On Thu, 11 Aug 2022 at 17:21, Viktor Dukhovni via Exim-users <
exim-users@???> wrote:
>
> At this point it would be useful to see the full PCAP file for just the
> traffic involving client port "44884".
>
> $ tcpdump -s0 -r /some/file.pcap -w /tmp/tfo.pcap tcp port 44884
>
> The tshark summary decode elides some details...
>
>
No problem - here's a link to the pcap file filtered down by port 44884.
https://www.chromosphere.co.uk/wp-content/blogs.dir/1/files/2022/08/tfo.zip
(It should unzip to the .pcap file)
Graeme